← D-TRUST cases
Bugzilla #2056882 Externally Reported Incident Certificate Misissuance Opened By Ca Single Ca Owner Closure Request

D-TRUST EV subordinate CA certificate report; closed INVALID

RESOLVED INVALID D-TRUST
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case was opened as a third-party Certificate Problem Report about the subordinate CA certificate "D-TRUST EV CA 2-23-2 2023." D-TRUST confirmed the reported certificate contents: the certificate contains subject:organizationIdentifier (VATDE-202620438) and does not include the cabfOrganizationIdentifier extension. In its initial report, D-TRUST said this was a violation of the EV Guidelines in effect at issuance and noted that the subordinate CA had never issued subscriber certificates, with only a delegated OCSP responder certificate issued from it. After completing its requirements analysis, D-TRUST said it no longer considered the certificate misissued and requested closure of the bug as INVALID. CCADB stated that the bug would be closed as INVALID on or about 2026-08-17, and the bug is now resolved INVALID.

Model: gpt-5.4-mini Generated: 2026-07-26 06:23 UTC Revised: 2026-08-23 07:00 UTC Confidence: 0.95 3 comments
Chronology
  1. The subordinate CA certificate D-TRUST EV CA 2-23-2 2023 was issued.
  2. A Certificate Problem Report was received about the subordinate CA certificate.
  3. D-TRUST requested closure of the bug as INVALID after completing its requirements analysis.
  4. The bug was resolved INVALID.
Thread Activity
  1. D-Trust — D-TRUST filed a preliminary incident report confirming the reported certificate contents and identifying the report as third-party reported.
  2. D-Trust — D-TRUST said it no longer considered the certificate misissued, explained its policy analysis, referenced Bug 2056663, and asked for the bug to be closed as INVALID.
  3. CCADB representative — CCADB stated that the bug would be closed as INVALID on or about 2026-08-17.
Participants
D-Trust CCADB representative
Related Bugzilla IDs Mentioned
Similar Local Cases
#2056663 RESOLVED Ca Certificate Compliance Externally Reported Incident Problem Reporting Failure Certificate Misissuance Opened 2026-07-21 · Closed 2026-08-10 · 81% similar
DigiCert: EVG CA profile compliance
#2056223 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Certificate Misissuance Opened 2026-07-20 · Closed 2026-08-08 · 81% similar
D-Trust OCSP Responder Certificates Include CA/B Forum DV Policy OID
#2037000 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Certificate Misissuance Opened 2026-05-05 Still Open · 74% similar
D-Trust: Missing Pre-Sign Linting for S/MIME Issuing CAs
#2057915 ASSIGNED Ca Certificate Compliance Externally Reported Incident Certificate Misissuance Validation Issue Opened 2026-07-26 Still Open · 71% similar
SSL.com: Invalid Subject stateOrProvince Values
#2032485 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2026-04-16 · Closed 2026-05-04 · 71% similar
DigiCert: Misissuance detected by PKIMetal
#1918427 RESOLVED Ca Certificate Compliance Incident Closure Request Opened 2024-09-12 · Closed 2024-10-11 · 71% similar
D-Trust: Non-compliance of issued root and intermediate S/MIME certificates
#2060581 ASSIGNED Ca Certificate Compliance Externally Reported Incident Certificate Misissuance Validation Issue Opened 2026-08-04 Still Open · 71% similar
Actalis: Issuance of Server TLS Certificates with id-kp-clientAuth against CPS
#2065634 ASSIGNED Ca Certificate Compliance Externally Reported Incident Certificate Misissuance Revocation Issue Opened 2026-08-21 Still Open · 70% similar
SSL.com: Invalid combinations of countryName, stateOrProvinceName, and localityName attributes

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action